📦

add-on_builder

Vendor: splunk

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 3 Total Indexed
Avg. EPSS 0.39% Exploit Prob.
Latest CVE CVE-2023-46231 Jan 30

Security Vulnerability Index

Page 1 / 1
6.8 CVSS

In Splunk Add-on Builder versions below 4.1.4, the application writes user session tokens to its internal log files when you visit the Splunk Add-on Builder or when you build or edit a custom app or add-on.

EPSS: 0.48%
8.2 CVSS

In Splunk Add-on Builder versions below 4.1.4, the app writes sensitive information to internal log files.

EPSS: 0.39%
4.8 CVSS

In Splunk Add-on Builder (AoB) versions below 4.1.2 and the Splunk CloudConnect SDK versions below 3.1.3, requests to third-party APIs through the REST API Modular Input incorrectly revert to using HTTP to connect after a failure to connect over HTTPS occurs.

EPSS: 0.32%